Seppmail

Secure Email Gateway

25 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 17.02%
  • Veröffentlicht 08.05.2026 13:12:17
  • Zuletzt bearbeitet 18.05.2026 17:16:34

SEPPmail Secure Email Gateway before version 15.0.4 exposes server environment variables through an unauthenticated endpoint in the new GINA UI, allowing remote attackers to obtain sensitive system information.

  • EPSS 0.1%
  • Veröffentlicht 02.04.2026 08:53:55
  • Zuletzt bearbeitet 16.04.2026 19:02:56

SEPPmail Secure Email Gateway before version 15.0.3 allows an attacker to inject HTML into notification emails about new CA certificates.

  • EPSS 0.27%
  • Veröffentlicht 02.04.2026 08:52:07
  • Zuletzt bearbeitet 16.04.2026 19:00:50

SEPPmail Secure Email Gateway before version 15.0.3 allows account takeover by abusing GINA account initialization to reset a victim account password.

  • EPSS 0.21%
  • Veröffentlicht 02.04.2026 08:50:55
  • Zuletzt bearbeitet 16.04.2026 19:00:40

SEPPmail Secure Email Gateway before version 15.0.3 allows an attacker to bypass subject sanitization and forge security tags using Unicode lookalike characters.

  • EPSS 0.25%
  • Veröffentlicht 02.04.2026 08:49:31
  • Zuletzt bearbeitet 16.04.2026 18:58:05

SEPPmail Secure Email Gateway before version 15.0.3 does not properly authenticate the inner message of S/MIME-encrypted MIME entities, allowing an attacker to control trusted headers.

  • EPSS 0.22%
  • Veröffentlicht 02.04.2026 08:47:49
  • Zuletzt bearbeitet 16.04.2026 19:01:10

SEPPmail Secure Email Gateway before version 15.0.3 allows attackers with a specially crafted email address to claim another user's PGP signature as their own.

  • EPSS 0.23%
  • Veröffentlicht 02.04.2026 08:46:15
  • Zuletzt bearbeitet 16.04.2026 19:07:50

SEPPmail Secure Email Gateway before version 15.0.3 allows attackers with a specially crafted email address to read the contents of emails encrypted for other users.

  • EPSS 0.13%
  • Veröffentlicht 02.04.2026 08:44:51
  • Zuletzt bearbeitet 16.04.2026 19:00:35

SEPPmail Secure Email Gateway before version 15.0.3 allows an attacker to forge a GINA-encrypted email.

  • EPSS 0.19%
  • Veröffentlicht 02.04.2026 08:42:38
  • Zuletzt bearbeitet 16.04.2026 19:01:40

SEPPmail Secure Email Gateway before version 15.0.3 allows an attacker to hide security tags from users by crafting a long subject.

  • EPSS 0.21%
  • Veröffentlicht 02.04.2026 08:34:32
  • Zuletzt bearbeitet 16.04.2026 19:00:20

SEPPmail Secure Email Gateway before version 15.0.3 allows an attacker to bypass subject sanitization and forge tags such as [signed OK].